Solutions

Built for the way your security team works.

Whether you run a 200-tenant MSP, a 14-site enterprise, or a 6-school district, olladns adapts to the shape of your environment — not the other way around.

MSPs & MSSPs

Onboard a new tenant in under five minutes.

olladns is built multi-tenant top to bottom. White-label the console with your logo and domain. Manage every customer from one operator pane. Bill from real usage, not seat licenses.

  • Hierarchical tenants — partner, customer, site, group, device
  • White-label portal at your own subdomain
  • Provision new tenants via API — your existing onboarding flow keeps owning the UX
  • Per-tenant scoped API tokens for usage sync into ConnectWise, Autotask, HaloPSA
  • MCP server — let your AI assistant onboard the next customer at 2am
  • Per-tenant branded reports, scheduled automatically
  • 35% partner margin, no minimum commitment
Apply to the partner program
MSP Console · Tenants
NW
Northwind Labs
442 devices · 8 sites
2.4M
148
healthy
CR
Cobalt Rivers Capital
198 devices · 3 sites
1.1M
62
healthy
LP
Larson Plumbing Co.
22 devices · 1 site
88K
4
healthy
SP
Saxon & Pine Architects
61 devices · 2 sites
340K
28
review
MD
Meridian Diagnostics
187 devices · 5 sites
1.8M
94
healthy
+ 214 more tenants
Sites · Acme Corp
12
Sites worldwide
1,082
Devices
14.2M
Queries / 24h
412.8K
Blocks / 24h
HQ — New York 2.4M · 192.0.2.0/24
London — Soho 612K · 203.0.113.0/24
Singapore APAC 334K · 198.18.0.0/24
Roaming — Global 4.8M · 614 endpoints
Enterprise

A federated security stack, with DNS as the keystone.

Replace your on-prem secure web gateway, retire those forwarder VMs, and unify policy across every office and remote endpoint. olladns deploys in a day and survives the audit.

  • SSO with Entra ID, Okta, Ping, Google, generic SAML
  • Granular RBAC — admin / viewer roles + 19 scoped permissions for API tokens
  • Policy-as-code — ship custom rules from CI; diff between staging and prod
  • HMAC-signed webhooks to Splunk, Sentinel, Datadog — every audit event, every threat
  • Per-device identification — every lookup tagged to the laptop that made it
  • 12-month query retention with hot search
  • Private resolver IPs, BYOIP, on-prem gateway options
  • 99.999% multi-region SLA with credit guarantee
K-12 & Education

CIPA-compliant filtering that doesn’t break learning.

Block the categories you must — adult content, gambling, weapons, self-harm — while still letting students reach research, video, and educational tools. olladns gives you the audit trail E-Rate and your school board need.

  • One-click CIPA-baseline policy
  • SafeSearch enforced on Google, Bing, YouTube
  • Chromebook + iPad off-network coverage via MDM
  • Per-device DoH URLs — every Chromebook gets its own; query log filterable by student device
  • Read-only viewer role for teachers and IT staff who shouldn't edit policy
  • Audit log for board reviews and E-Rate audits — every change attributed
  • Self-harm & threat keyword alerts → counselor email via webhook
  • Transparent block page with appeal link
CIPA Baseline · Blocked categories
Adult Content
Gambling
Weapons
Drugs & Alcohol
Self-harm
Hate & Violence
Anonymizers
Phishing
Allowed for learning
Khan Academy YouTube (SafeSearch) Wikipedia Google Classroom Canvas LMS
Compliance posture
SOC 2 Type II
Observation in progress · report expected Q3 2026
HIPAA BAA
Not yet offered — ask if it's a requirement
ISO 27001
Not yet certified — roadmap after SOC 2
Per-tenant retention + anonymization
Real today — 1–365 days, drop client IP at ingest
Healthcare

Filter the network without disrupting the OR.

PHI never appears in our logs (we only see DNS query names, not payloads). Per-tenant anonymization can drop the source IP at ingest. Audit logs are real; HIPAA BAA isn't offered yet — ask if it's a requirement.

  • Pre-built “medical safe” policy that won’t break devices
  • EHR & PACS-aware allow-lists for Epic, Cerner, Meditech
  • Allowlist-only (default-deny) mode for clinical desktops and infusion-pump segments
  • Client-IP anonymization at ingest — query logs that satisfy minimum-necessary
  • Per-tenant retention (1–365 days) — tune to your data-retention policy
  • Tamper-evident audit logs · WORM-mode S3 export
  • Typosquat detection tuned for patient-portal lookalikes (push your portal domains to /policies/protect-list)
Small Business

Enterprise security. Without the enterprise IT team.

If you have a router, you can deploy olladns in 15 minutes. Sensible defaults block 99% of threats out-of-the-box. You only see the console when you want to.

  • Plain-English block page — no IT jargon
  • Weekly email digest of what we blocked & saved
  • One-click presets: Office, Retail, Construction, Hospitality
  • "Ask your AI to set it up" — connect Claude or Cursor to mcp.olladns.com and skip the console entirely
  • Slack webhook for the moments that matter (new threat, policy change)
  • Live chat support, US-based, 24/5
Weekly digest · Sample
This week, olladns protected your business.
Threats stopped
142
Phishing blocks
38
Bandwidth saved
4.2GB
Top threats blocked
tracker.adsvc.io
login-microsoft-secure.cf
paypal-verify-update.top
crypt0-mining-pool.click

Find the fit for your team.

15-minute call with a real engineer (no SDRs). We’ll walk through your stack and tell you honestly if olladns makes sense.